Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.22-debian-fips-dev, 1.22-debian13-fips-dev, 1.22-fips-dev, 1.22.1-debian-fips-dev, 1.22.1-debian13-fips-dev, 1.22.1-fips-dev

Index digest:

sha256:83d8781e892762217ba59b1656689c9291c0945a6cfddaf717f9f6ac7b9f352d

Manifest digest:

sha256:57114a33a4c5969a242ddf4b2556e0117ae615ee274e6b6c8c12345fdfd5000c

Size

53.62 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:600cdabd8e7e7e5012833be061e4ccc04f4b0ab381feb2f3dd75da8f18d36aec
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:641e64eb3dbe5e5a10881351c445ae4825acaed201bfe30b1586ffbc1cfc86eb
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:69cd8fee978092e44692235425866f3582195c733cfca6525020b020a3bccde6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:138e17b1975e188ed92c90b81270547ebad036319e5f0b40ea3ad2d467aea1e2
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:4cf46f0db897e8382c333a29fa851f8e4374a9e82eaaa70ae2462fab7b857794
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:9c786329480f95d0079cdd0fb1abfee4c1ba2bd75e9d88e89b407bd111f29a13
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:7f3bc1726ece2dd87096ec6c826c303bdc67d7117d5ccbed000a26af19620fa8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:dce6075c9d91a9cfcd168993b2f0489892a4fd2ecf595003d79bbd1ca84166f5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:0af0b23ae99efa6e954001adc4c29e24ba9b0b86d5b4f78bc481e96d559413a2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:00193b41e03a5b00d33c0a6b11e3598ce02851781e0d4b72a467ab2f5edd7819
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:170791d99bea3b7cdb7a92713dc539ae841f590fa7619ca10fd68768bbd52217
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:c1aeb99ca044df5a414593a1a1bc1e8175e67de86a992e2db42066ddad870cba
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:6678c236c675040b7708e08f7faad144bad9237910ac99860adeaab1a82c9b7d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:19fd08517fcb5f0a02aba7ad74f5cd209af5dee4285f6cf52583d0223840cbae
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:4a3d599b20517b34a6e066182cd349f86facd5426c40a4a8f8db330de8f44849
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:b5e8b65286c337aaaf3152661807fa388df03132d874441626da48d95910bc4d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:908d9480c3181a217298cc56ccf12e1c4143ea7e005fde2236af55e3a7209beb